CLAIM AMENDMENTS 



Claim Amendment Summary 
Claims pending 

• Before this Amendment: Claims 1-4, 6, 10, 19, 21, 22, and 36-60. 

• After this Amendment: Claims 1-4, 6, 10, 19, 21, 22, and 36-60 
Non-Elected, Canceled, or Withdrawn claims: 5, 7-9, 11-1 8, 20, and 23-35 
Amended claims: 1, 36, 44, 51, 58, 59, and 60 

New claims: none 



Claims: 

1. (Currently Amended) A method, comprising: 

a first electronic device d e riving a digital signature and associating tho 
digital signatur e with digitally signin g a web page, wherein the web page includes 
code to invoke a control object, and wherein the web page does not include the 
control object; and 

subsequent to associating the digital signature with the web page, the first 
electronic device delivering the web page to a second electronic device capable of 
authenticating the source of the web page based on the digital signature such that 
the second electronic device executes at least a portion of the web page in 
response to authenticating the digital signature. 



Serial No.: 09/650,712 3 ^ 

Atty Docket No.: MS1-0579US lee^hayeS The Business of IP' 

Atty/ Agent: Bea Koempel-Thomas ■^mieehayestom 50932^9256 

Response to Final Office Action 



2. (Original) The method as recited in claim 1 , wherein the associating further 
comprises attaching the digital signature to the web page. 

3. (Previously Presented) The method as recited in claim 1, further comprising; 
in an event that the web page does not include code to invoke the control object, 
the first electronic device delivering the web page without a digital signature. 

4. (Previously Presented) The method as recited in claim 1, wherein the web 
page includes a confirmation module that is used by the second electronic device to 
authenticate the digital signature. 

5. (Cancelled) 

6. (Original) The method as recited in claim 1, wherein the web page is 
generated in an active server page (ASP) environment. 

7 - 9. (Cancelled) 

10. (Previously presented) The method as recited in claim 1, further 
comprising designating one or more sources of a web page authorized to invoke the 
control object. 

11. -18. (Cancelled) 
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19. (Previously presented) The method as recited in claim 1, wherein the 
control object includes a confirmation module configured to authenticate the digital 
signature. 

20. (Cancelled) 

21. (Previously presented) The method as recited in claim 19, wherein the 
confirmation module is further configured to determine if the web page comes from a 
source that is authorized to invoke the control object and the control object is invoked 
only if the source of the web page is authorized to invoke the control object. 

22. (Previously presented) The method as recited in claim 19, wherein the 
confirmation module is called by the web page prior to the web page invoking the 
control object. 

23. - 35. (Cancelled) 

36. (Currently Amended) A method, comprising: 

a first electronic device receiving from a second electronic device, a request to 
download a web page; and 

in response to receiving the request, the first electronic device: 

determining whether the web page includes code to invoke a control object; 

in an event that the web page includes code to invoke a control object, 
attaching associating a web page digital signature wi^ to the web page; and 
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delivering the web page to the second electronic device, wherein the second 
electronic device is capable of authenticating the source of the web page based on 
the digital signature such that the second electronic device executes at least a 
portion of the web page in response to authenticating the web page digital 
signature. 

37. (Previously Presented) The method as recited in claim 36, wherein a 
control object digital signature is associated with the control object. 

38. (Previously Presented) The method as recited in claim 36, wherein 
associating the web page digital signature with the web page further comprises deriving 
the web page digital signature. 

39. (Previously Presented) The method as recited in claim 36, further 
comprising: 

in an event that the web page does not include code to invoke the control object: 

in response to receiving the request, the first electronic device delivering 
the web page to the second electronic device without the web page digital 
signature. 

40. (Previously Presented) The method as recited in claim 36, wherein the 
web page includes a confirmation module that is used by the second electronic device to 
authenticate the web page digital signature. 
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41. (Previously Presented) The method as recited in claim 36, wherein the 
control object includes a confirmation module configured to authenticate the web page 
digital signature. 

42. (Previously Presented) The method as recited in claim 36, further 
comprising a confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is prevented from 
invoking the control object if the source of the web page is not authorized to invoke the 
control object. 

43. (Previously Presented) The method as recited in claim 41, further 
comprising the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 

44. (Currently Amended) A method, comprising: 

a first electronic device determining whether a web page includes code to invoke a 
control object, wherein the control object does not have an associated digital signature; 
and 

based on a determination that the web page includes code to invoke the control 

object: 

the first electronic device associating attaching a digital signature witib to 
the web page; and 

subsequent to a ss ee i^ at - ing attaching the digital signature with to the web 
page, the first electronic device delivering the web page to a second electronic 
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device capable of authenticating a source of the web page based on the digital 
signature such that the second electronic device executes the code to invoke the 
control object in response to authenticating the digital signature, and such that the 
second electronic device prevents execution of the code to invoke the control 
object in response to failing to authenticate the digital signature. 

45. (Previously Presented) The method as recited in claim 44, wherein 
associating the digital signature with the web page ftirther comprises deriving the digital 
signature. 

46. (Previously Presented) The method as recited in claim 44, further 
comprising: 

based on a determination that the web page does not include code to invoke the 
control object: 

the first electronic device delivering the web page to the second electronic 
device without the digital signature. 

47. (Previously Presented) The method as recited in claim 44, wherein the 
web page includes a confirmation module that is used by the second electronic device to 
authenticate the digital signature. 

48. (Previously Presented) The method as recited in claim 44, wherein the 
control object includes a confirmation module configured to authenticate the digital 
signature. 

Serial No.: 09/650,712 
Atty Docket No.: MS1-0579US 
Atty/Agent: Bea Koempel-Thomas 
Response to Final Office Action 




49. (Previously Presented) The method as recited in claim 44, further 
comprising a confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is prevented firom 
invoking the control object if the source of the web page is not authorized to invoke the 
control object. 

50. (Previously Presented) The method as recited in claim 49, further 
comprising the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 
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51. (Currently Amended) A method, comprising: 

a first electronic device determining whether a web page includes code to invoke a 
control object, wherein a first digital signature is associated with the control object; 

based on a determination that the web page includes code to invoke the control 
object, the first electronic device associating a s e cond digital signatur e with digitally 
signing the web page with a second dig ital signature : and 

subsequent to associating digitally signing the web page with the second digital 
signature with th e web pag e, the first electronic device delivering the web page to a 
second electronic device capable of authenticating the source of the web page based on 
the second digital signature such that the second electronic device executes the code to 
invoke the control object in response to authenticating the second digital signature, and 
such that the second electronic device prevents execution of the code to invoke the 
control object in response to failing to authenticate the source of the web page based on 
the second digital signature. 

52. (Previously Presented) The method as recited in claim 51, wherein 
associating the second digital signature with the web page further comprises deriving the 
second digital signature. 
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53. (Previously Presented) The method as recited in claim 51, further 
comprising: 

based on a determination that the web page does not include code to invoke the 
control object: 

the first electronic device delivering the web page to the second electronic 
device without the second digital signature. 

54. (Previously Presented) The method as recited in claim 51, wherein the 
web page includes a confirmation module that is used by the second electronic device to 
authenticate the second digital signature. 

55. (Previously Presented) The method as recited in claim 51, wherein the 
control object includes a confirmation module configured to authenticate the second 
digital signature. 

56. (Previously Presented) The method as recited in claim 51, further 
comprising a confirmation module determining whether a source of the web page is 
authorized to invoke the control object such that the web page is prevented from 
invoking the control object if the source of the web page is not authorized to invoke the 
control object. 

57. (Previously Presented) The method as recited in claim 56, further 
comprising the second electronic device invoking the confirmation module prior to 
executing the code to invoke the control object. 
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58. (Currently Amended) One or more tangible computer-readable media 
comprising computer- executable instructions that, when executed, direct a first 
computing device to: 

determine whether a web page includes code to invoke a control object, wherein 
the control object does not have an associated digital signature; and 

based on a deteraiination that the web page includes code to invoke the control 
object, associate attach a digital signature with to the web page, wherein the digital 
signature is not directly associated with the control object; and 

deliver the web page to a second computing device capable of authenticating the 
source of the web p age based on the digital signature such that the second computing 
device executes the code to invoke the control object in response to authenticating the 
source of the web page based on the digital signature, and such that the second computing 
device prevents execution of the code to invoke the control object in response to failing 
to authenticate the source of the web page based on the digital signature. 
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59. (Currently Amended) One or more tangible computer-readable media 
comprising computer- executable instructions that, when executed, direct a first 
computing device to: 

determine whether a web page includes code to invoke a control object, wherein a 
first digital signature is associated with the control object; 

based on a determination that the web page includes code to invoke the control 
object, a s ^ ekte attach a second digital signature with to the web page; and 

deliver the web page to a second computing device capable of authenticating the 
source of the web page based on the second digital signature such that the second 
computing device executes the code to invoke the control object in response to 
authenticating the source of the web page based on the second digital signature, and such 
that the second computing device prevents execution of the code to invoke the control 
object in response to failing to authenticate the source of the web page based on the 
second digital signature. 
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60. (Currently Amended) A system comprising: 

a page generator to generate a web page, wherein the web page includes a control 

object; 

a digital signature module to: 

determine whether the web page includes a script to invoke the control 

object; 

derive a digital signature from the web page; 

based on a determination that the web page includes a script to invoke the 
control object, attach the digital signature to the web page such that the digital 
signature is not directly associated with the control object , but is associated with 
the source of the web page ; and 

a web page delivery module to deliver the web page to an electronic device. 



Serial No.: 09/650,712 14 

Atty Docket No.: MS1-0579US lee^hayeS The Business of IP"* 

Ally/ Agent: Bea Koempel-Thomas wwwieehoy^sroni 503324925s 

Response to Final Office Action 



